On Wed, 28 May 2003 18:20:48 +0200, David ROBERT <david@ombrepixel.com> 
wrote:
> Hi,
>
> Is it possible to create a DNAT rule with a different port for the DEST 
> and the ORIGINAL DEST ?
> Let me explain : I want someone wich connect to my firewall port 80 
> access to the webserver on a
> host in my DMZ listening at port 8080.
>
> This kind of thing is possible directly using iptables, but I
didn''t find
> a way to do this
> in the shorewall documentation, any idea ?
>
This is FAQ #1c -- http://www.shorewall.net/FAQ.htm#faq1c
-Tom
-- 
Tom Eastep    \ Shorewall - iptables made easy
Shoreline,     \ http://www.shorewall.net
Washington USA  \ teastep@shorewall.net